You need to deploy a read-only domain controller (RODC) that runs Windows Server 2008 R2. What is the minimal forest functional level that you should use?
A. Windows Server 2008 R2
B. Windows Server 2008
C. Windows Server 2003
D. Windows 2000
Correct Answer: C
Your company has a single Active Directory domain named intranet.contoso.com. All domain controllers run Windows Server 2008 R2. The domain functional level is Windows 2000 native and the forest functional level is Windows 2000. You need to ensure the UPN suffix for contoso.com is available for user accounts. What should you do first?
A. Raise the intranet.contoso.com forest functional level to Windows Server 2003 or higher.
B. Raise the intranet.contoso.com domain functional level to Windows Server 2003 or higher.
C. Add the new UPN suffix to the forest.
D. Change the Primary DNS Suffix option in the Default Domain Controllers Group Policy Object (GPO) to contoso.com.
Correct Answer: C
Your company, A. Datum Corporation, has a single Active Directory domain named
intranet.adatum.com. The domain has two domain controllers that run Windows Server 2008 R2 operating system. The domain controllers also run DNS servers. The intranet.adatum.com DNS zone is configured as an Active Directoryintegrated zone with the Dynamic updates setting configured to Secure only. A new corporate security policy requires that the intranet.adatum.com DNS zone must be updated only by domain controllers or member servers. You need to configure the intranet.adatum.com zone to meet the new security policy requirement. Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)
A. Remove the Authenticated Users account from the Security tab of the intranet.adatum.com DNS zone properties.
B. Assign the SELF Account Deny on Write permission on the Security tab of the intranet.adatum.com DNS zone properties.
C. Assign the server computer accounts the Allow on Write All Properties permission on the Security tab of the intranet.adatum.com DNS zone properties.
D. Assign the server computer accounts the Allow on Create All Child Objects permission on the Security tab of the intranet.adatum.com DNS zone properties.
Correct Answer: AD
Your company has an Active Directory forest that contains only Windows Server 2008 domain controllers. You need to prepare the Active Directory domain to install Windows Server 2008 R2 domain controllers. Which two tasks should you perform? (Each correct answer presents part of the solution. Choose two.)
A. Run the adprep /forestprep command.
B. Run the adprep /domainprep command.
C. Raise the forest functional level to Windows Server 2008.
D. Raise the domain functional level to Windows Server 2008.
Correct Answer: AB
You have a test lab that contains 20 client computers and a server named Server1. The client computers run Windows 7. Server1 runs Windows Server 2008 Service Pack 2 (SP2). You install the Key Management Service (KMS) on Server1. You need to ensure that the client computers can successfully activate by using Server1. What should you do?
A. Upgrade Server 1 to Windows Server 2008 R2.
B. Deploy five additional client computers that run Windows 7.
C. On each client computer, run slmgr.vbs /rearm.
D. On Server1, restart the Windows Activation Technologies service.
Correct Answer: B
Your network contains a single Active Directory domain. The domain contains two Active Directory sites named Site1 and Site2. You have a cluster named Cluster1. Cluster1 has two nodes named Server1 and Server2. Server1 is located in Site1. Server2 is located in Site2. Cluster1 uses a file share witness that is located in Site1. Cluster1 hosts a clustered application named App1. The network in Site1 fails. You need to ensure that users can access App1. What should you do?
A. Force quorum on Server2.
B. Enable persistent mode for App1.
C. Modify the dependencies for App1.
D. Modify the failover settings for App1.
Correct Answer: A
Your network contains a server named Server1 that has the Web Server (IIS) server role installed. The network contains a computer named computer1 that runs Windows 7. Computer has the Remote Server Administrator Tools (RSAT) installed. You need to ensure that you can administer Server1 from Computer1 by using IIS Manager. The solution must minimize the number of roles services installed on Server1. What should you install on Server1?
To answer, select the appropriate role service from the Add Role Service dialog box in the answer area.
Point and Shoot:
Your network contains a web server named Server1. You need to ensure that Server1 authenticates users by using a custom Web page. Which authentication method should you enable from IIS Manager?
To answer, select the appropriate authentication method in the answer area.
Point and Shoot:
Your network contains a Windows Server Update Services (WSUS) server named Server1. All client computers are configured to download updates from Server1. Server1 is configured only to synchronize manually to Microsoft Update. Your company deploys a new Microsoft application. You discover that the new application is not listed on the Products and Classifications list. You synchronize the WSUS server. You need to ensure that updates for the new application are available to all of the client computers. What should you do?
To answer, move the appropriate actions from the Possible Actions list to the Necessary Actions area and arrange them in the correct order.
Select and Place:
Your network contains three servers. The servers are configured as shown in the following table:
You need to configure Server1 to use Network Access Protection (NAP) for all client connections. Which node from RD Gateway Manager should you use to make this configuration?
To answer, select the appropriate node in the answer area.
Point and Shoot: